


So ideally, we just had to add our security notifications to the same chatroom to get notified and to never miss a security issue again. All these notifications are collected in a dedicated room for which a company policy dictates those should be all read. On the other side, we heavily use Slack for chat and notifications from build pipelines, service changes, system errors, etc. I’m not the person to check all these dashboards on a daily basis for new findings, I simply forget to do so. The only issue I had, is that often their findings stayed under the radar way too long. To secure our AWS Cloud setup we use quite some tools:ĪWS Security Hub, AWS Inspector, AWS Guardduty and ECR Vulnerability Scanning just to name a few.Īll these tools are both easy to set up and do a very nice job finding weaknesses and treats.
